Tag: emerging threats
4870 articles

China-Linked Hackers Expose Wide-Ranging Espionage Campaign
Meet SHADOW-EARTH-053, a China-aligned espionage group that's been secretly lurking in the shadows since December 2024, using clever tactics like exploiting vulnerabilities and deploying web shells to gain persistent access to sensitive targets. Their sophisticated attacks have been linked to other notorious intrusion sets, revealing a vast and complex espionage campaign.

Cybercrime Groups Exploit Vishing, SSO Abuse in SaaS Extortion Spree
Cybercrime groups are launching lightning-fast extortion attacks within trusted SaaS environments, exploiting vishing and SSO abuse to evade detection and strike with precision. By hiding in plain sight, they're creating significant challenges for defenders trying to keep up.

cPanel Vulnerability Exploited, Ransomware Attacks Reported
A critical cPanel vulnerability, CVE-2026-41940, has been exploited, putting servers at risk of full takeover and ransomware attacks - with a near-worst-case severity score of 9.8. This flaw affects cPanel, WebHost Manager, and WP Squared, and has already been flagged by the US government's cybersecurity agency as being exploited in the wild.

Microsoft Fixes Remote Desktop Security Warning Display Flaw
Microsoft just dropped an optional update, KB5083631, to squash a bug that's been causing Remote Desktop security warnings to display incorrectly - a fix that's especially crucial for those using multiple monitors with different scaling settings. This targeted update is part of a larger release that includes 34 other changes to improve your Windows 11 experience.

OpenAI Restricts Access to GPT-5.5-Cyber Model
OpenAI is launching its powerful GPT-5.5-Cyber model, but with a cautious approach, starting with a limited rollout to a select group of trusted cyber defenders who will help secure critical systems and infrastructure. The company plans to collaborate with the government and the broader ecosystem to ensure responsible and secure access.

Anthropic Unveils Claude Security for AI-Powered Vulnerability Scanning
Boost your organization's security with Claude Security, now in public beta, which scans codebases to detect and fix software vulnerabilities with just a few clicks. Say goodbye to tedious API integrations and custom agent builds - simply access the feature from the Claude.ai sidebar and start scanning today!

US Sentences Two Cybersecurity Pros for BlackCat Ransomware Role
Two cybersecurity experts turned to a life of crime, using their specialized knowledge to extort victims through BlackCat ransomware attacks, and have been sentenced to four years in prison for their roles. Ryan Goldberg and Kevin Martin deployed the ransomware against multiple US victims between April and December 2023.

AI Uncovers Nine-Year-Old Linux Kernel Zero-Day Flaw
A shocking nine-year-old flaw in the Linux kernel, dubbed "Copy Fail," allows unprivileged users to secretly alter readable files and potentially gain root access to affected systems. This vulnerability, tracked as CVE-2026-31431, has been lurking in Linux kernels since 2017, putting countless machines at risk.

Pro-Iran Hackers Extort Canonical with Sustained DDoS Attacks
Canonical, the company behind Ubuntu, is battling a relentless cyber assault, with its website crippled by a sustained Distributed Denial of Service (DDoS) attack that has left its main site inaccessible. The Islamic Cyber Resistance in Iraq, also known as 313 Team, has claimed responsibility for the attack.

US Cybersecurity Workers Jailed for Aiding BlackCat Ransomware Gang
Meet Ryan Goldberg and Kevin Martin, two cybersecurity experts who abused their skills to line their pockets by aiding the notorious BlackCat ransomware gang. They've been sentenced to four years in prison for their roles in facilitating devastating ransomware attacks.

MSPs Face Hurdles in Capturing Cybersecurity Revenue
The managed security services market is booming, expected to surge from $38.31 billion to $69.16 billion by 2030, but MSPs are struggling to turn this growth into revenue, stuck in an "execution gap" between technical expertise and business-focused sales strategies. To bridge this gap, MSPs must shift their sales messaging from technical jargon to tangible business outcomes like risk reduction and compliance success.

Malicious Ruby Gems, Go Modules Exploit CI Pipelines for Credential Theft
Malicious actors are targeting developers and CI pipelines with fake Ruby Gems and Go Modules, masquerading as familiar libraries to steal credentials. The campaign, linked to the GitHub account BufferZoneCorp, poses a significant threat to software supply chains.

Microsoft Releases KB5083631 Update, Bolstering Windows 11 Security and Performance
Boost your Windows 11 security and performance with the latest optional update, KB5083631, which introduces a more secure processing mode for batch files and other quality improvements. Get ahead of the curve by installing this preview update now and be ready for the next Patch Tuesday release.

Ransomware Negotiators Sentenced for BlackCat Attacks
Two former cybersecurity experts, who once worked to protect companies, were sentenced to four years in prison for using their skills to extort US businesses as affiliates of the notorious BlackCat ransomware gang. They exploited their specialized knowledge to orchestrate attacks on US companies, leaving a trail of devastation in their wake.

Ukraine Seizes Long-Term Edge Over Russia in Iran War Fallout
While Russia may be enjoying a short-term energy windfall from the Iran war, Ukraine is poised to gain a lasting strategic advantage that will outlast the current chaos. The real prize isn't the immediate cash boost from higher energy prices, but the long-term diplomatic and military gains that will shape the future of the region.

cPanel vulnerability exploited in wild, CISA warns
A critical cPanel vulnerability, CVE-2026-41940, with a near-perfect 9.8 CVSS score, is being exploited in the wild, putting roughly 1.5 million exposed instances at risk of being opened without a password. This flaw allows attackers to bypass authentication by cleverly manipulating the password field with hidden line breaks.

US Marine Corps Bolsters Amphibious Vehicles with Active Protection Systems
The US Marine Corps is taking a major leap forward with its Amphibious Combat Vehicles (ACVs) by integrating Active Protection Systems, a game-changing upgrade that will significantly enhance their safety and effectiveness. This cutting-edge technology is just the beginning, with plans already underway to evolve and improve it even further.

Air Force Moves to Retire E-11 Battlefield Communication Fleet
The Air Force is planning to retire its fleet of E-11 Battlefield Airborne Communication Node (BACN) aircraft, with a target retirement date of fiscal 2028, and is turning to the Hybrid SATCOM Terminal program as a temporary solution to bridge the capability gap. The move will pave the way for a more advanced communication system, according to top Air Force officials.

Congress Extends Surveillance Law Amid Renewed Scrutiny
Congress has given itself a 45-day reprieve, extending a contentious surveillance law that's raised alarm bells over its potential for abuse, despite revelations of major compliance problems. The law, Section 702, allows for warrantless snooping on foreign targets, but critics worry about its impact on civil liberties.

Air Force Seeks Supplemental Funding to Replace Iran War Losses
The Air Force is seeking extra funds to repair or replace aircraft lost in recent conflicts, including dozens damaged or destroyed since Operation Epic Fury began in late February. This supplemental funding will help boost the number of fighter jets, bombers, and tankers in its fleet.

Pentagon Eyes Flood of Reconciliation Funds for Defense Contracts
Defense Secretary Pete Hegseth told the Senate Armed Services Committee that the floodgates are about to open, promising a surge in defense contracts as a massive $152 billion in funding is set to be unleashed, with only $26 billion allocated so far. The pending contracts are expected to prioritize key initiatives, including munitions, nuclear modernization, and new ships.

FCC Fortifies Telecom Rules to Combat Robocalling and Cyber Threats
The FCC is cracking down on telecom companies that aren't doing enough to stop robocalling and cyber threats, with Chair Brendan Carr slamming those who do the bare minimum to verify callers as complicit in illegal schemes. New rules aim to tighten verification and supply-chain security to protect US phone networks.

Japan Confronts Limits of Fact-Checking in Countering Chinese Disinformation
When China's foreign minister declared Taiwan an inalienable part of China's territory, his words went viral - spreading like wildfire across state media, diplomatic dispatches, and online campaigns. Since Japan's Prime Minister Sanae Takaichi took a firmer stance on Taiwan, Beijing has stepped up its disinformation game, distorting her words and making bold claims about Okinawa.

US Military Operation in Iran Hits 60-Day Limit
The 60-day mark for US military operations in Iran has been reached, sparking a heated debate over whether the administration will seek congressional approval to continue its actions. Lawmakers, including Sen. Tim Kaine, are pressing for clarity on the matter, citing the War Powers Resolution as the basis for their concerns.